Every new exploit,
on the radar.
Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.
monitoring live
CVE-2026-88776
CVE-2026-84520
CVE-2026-51994
CVE-2026-107181
CVE-2026-104587
CVE-2026-104586
CVE-2026-104585
CVE-2026-104584
CVE-2025-34071
CVE-2026-95149
CVE-2026-94597
CVE-2026-28775
CVE-2026-24046
CVE-2026-107406
14 contacts in last 24h
11114CVEs tracked
26004PoC repositories
17New in 24h
354PoC updated in 7 days
filters
803 results
PoCs 12
★ 35
Last push 2026-10-06 (3 days, 23 hours ago)
Fetching description from NVD…
Show 8 of 12 repositories
imbas007/CVE-2026-42533
nginx heap buffer overflow PoC — CVE-2026-42533 pre-auth RCE via two-pass capture clobbering. Crash confirmed on Ubuntu 24.04.
★ 35 · 2026-07-27
Daniyal48/ghostlock-vagrant-box
An isolated Vagrant testbed designed to simulate a complete attack chain: Initial access via the Nginx heap buffer overflow (CVE-2026-42533) followed by root p…
★ 1 · 2026-07-20
0xCyberstan/CVE-2026-42533-POC
CVE-2026-42533: pre-auth nginx heap overflow and info leak from PCRE capture clobbering in the map/script engine, chained to RCE.
★ 1 · 2026-08-05
srkyn/nginx-map-risk-audit
Defensive NGINX CVE-2026-42533 map regex risk audit with config scanner, Splunk/Defender notes, and lab evidence.
★ 0 · 2026-07-20
PoCs 5
★ 3
Last push 2026-10-06 (4 days, 5 hours ago)
Fetching description from NVD…
Show 5 repositories
Jenderal92/CVE-2026-8206
Mass exploitation tool for CVE-2026-8206 – Unauthenticated Privilege Escalation via 'handle_forgot_password' in Kirki WordPress plugin (≤6.0.6).
★ 3 · 2026-06-02
PoCs 85
★ 442
Last push 2026-10-06 (4 days, 7 hours ago)
Fetching description from NVD…
Show 8 of 85 repositories
PolarisLab/S2-045
Struts2 S2-045(CVE-2017-5638)Vulnerability environment - http://www.mottoin.com/97954.html
★ 23 · 2017-03-07
PoCs 12
★ 1896
Last push 2026-10-05 (4 days, 18 hours ago)
Fetching description from NVD…
Show 8 of 12 repositories
pentestfunctions/BlueDucky
🚨 CVE-2023-45866 - BlueDucky Implementation (Using DuckyScript) 🔓 Unauthenticated Peering Leading to Code Execution (Using HID Keyboard)
★ 1896 · 2026-02-11
Danyw24/blueXploit
Exploit basado en vulnerabilidades criticas Bluetooth (CVE-2023-45866, CVE-2024-21306)
★ 16 · 2026-07-23
Sergeb250/BlueDucky
BlueDucky exploits a Bluetooth vulnerability, specifically CVE-2023-45866, which allows an attacker to inject keystrokes into a target device. The attacker's d…
★ 2 · 2025-08-26
xG3nesis/RustyInjector
Rust implementation of Marc Newlin's keystroke injection proof of concept (CVE-2023-45866).
★ 1 · 2025-01-25
hegaz0y/-BuL
EDSEC_BKIF is a keystroke injection tool for Android, Linux, and iOS. With the help of CVE-2023-45866, it grants users unprecedented control over targeted syst…
★ 1 · 2026-05-31
CVSS 8.8 HIGH
CWE-787
Published 2026-09-28
PoCs 5
★ 9
Last push 2026-10-05 (4 days, 22 hours ago)
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, macOS Tahoe 26.7.1. Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.
Show 5 repositories
msuiche/hotcell
Runtime exploit monitor for Apple document/image pipelines (iOS/macOS) — EXPMON concept: Frida agent + behavioral rules. First target: the CVE-2026-86950 glyph…
★ 9 · 2026-10-02
PoCs 5
★ 41
Last push 2026-10-05 (4 days, 23 hours ago)
Fetching description from NVD…
Show 5 repositories
KaraZajac/CHARON
CHARON — pre-built PoC for CVE-2026-46333 (Linux ptrace mm==NULL fd theft)
★ 8 · 2026-05-17
studiogangster/CVE-2026-46333
Research on `pidfd_getfd(2)`-based file descriptor leakage from privileged SUID processes. Demonstrates race-condition FD capture against OpenSSH `ssh-keysign`…
★ 6 · 2026-05-17
PoCs 9
★ 4
Last push 2026-10-05 (5 days, 1 hour ago)
Fetching description from NVD…
Show 8 of 9 repositories
dahnutz/zimbra-cve-2026-73570-ir
Detection-first, evidence-preserving incident-response toolkit for Zimbra CVE-2026-73570. Includes read-only host checks, IOC feeds, triage, persistence, conta…
★ 2 · 2026-10-05
juanpoch/CVE-2026-73570
Zimbra Collaboration Suite RCE — SMTP log poisoning → swatchdog → OS Command Injection (CVSS 8.9, CISA KEV)
★ 0 · 2026-09-13
PoCs 14
★ 92
Last push 2026-10-05 (5 days, 2 hours ago)
Fetching description from NVD…
Show 8 of 14 repositories
PoCs 12
★ 2
Last push 2026-10-05 (5 days, 2 hours ago)
Fetching description from NVD…
Show 8 of 12 repositories
Intrudify/mini-shai-hulud-scanner
Scanner for the Mini Shai-Hulud npm/PyPI supply chain worm (NHS CC-4781 · CVE-2026-45321). Detects gh-token-monitor persistence, payload artefacts, and attacke…
★ 2 · 2026-05-13
qi-scape/scan-shai-hulud
Detect CVE-2026-45321 Mini Shai-Hulud supply chain compromise — scans for 170 npm + 2 PyPI poisoned packages across TanStack, Mistral AI, UiPath, OpenSearch, G…
★ 1 · 2026-05-12
shayr1/shai-hulud-scan
Claude Code skill to scan machines for Mini Shai-Hulud (CVE-2026-45321) supply chain worm IOCs
★ 1 · 2026-05-13
ry-allan/tanstack-compromise-checker
Detects CVE-2026-45321 (TanStack supply chain compromise) and Mini Shai-Hulud worm artifacts. Scans node_modules, lockfiles, persistence hooks (Claude Code, VS…
★ 0 · 2026-05-24
PoCs 10
★ 27
Last push 2026-10-04 (5 days, 16 hours ago)
Fetching description from NVD…
Show 8 of 10 repositories
Goultarde/CVE-2024-46987
This Python PoC exploits CVE-2024-46987, a Path Traversal bug in Camaleon CMS 2.8.0 < 2.8.2 (work on 2.9.0). It allows authenticated users to read sensitive s…
★ 27 · 2026-05-10
ramzerk/CVE-2024-46987
This Rust PoC exploits CVE-2024-46987, a Path Traversal bug in Camaleon CMS 2.8.0 < 2.8.2 (work on 2.9.0).
★ 0 · 2026-02-09
PoCs 7
★ 559
Last push 2026-10-04 (5 days, 16 hours ago)
Fetching description from NVD…
Show 7 repositories
reswitched/rcm-modchips
Collection of "modchip" designs for launching payloads via the Tegra RCM bug (CVE-2018-6242)
★ 21 · 2018-05-22
nikameru/nxboot
Payload injection tool for Nintendo Switch consoles vulnerable to CVE-2018-6242 ("Fusée Gelée")
★ 2 · 2026-10-04
Resi-le/NXLoader
An app that enables payload injection into a Switch console from an Android device by exploiting the CVE-2018-6242 vulnerability
★ 1 · 2025-12-21
oliviaholly/fusee-gelee
An implementation of the Fusee Gelee exploit (CVE-2018-6242) for the Nintendo Switch, along with a custom payload.
★ 0 · 2026-03-30
PoCs 10
★ 22
Last push 2026-10-04 (5 days, 17 hours ago)
Fetching description from NVD…
Show 8 of 10 repositories
PoCs 8
★ 89
Last push 2026-10-04 (6 days, 1 hour ago)
Fetching description from NVD…
Show 8 repositories
GiZcesi/HJregsvr32
Educational PoC for CVE-2025-49144 (regsvr32 LOLBIN) — authorized lab use only
★ 0 · 2026-10-04
PoCs 10
★ 93
Last push 2026-10-04 (6 days, 6 hours ago)
Fetching description from NVD…
Show 8 of 10 repositories
adibirzu/openclaw-security-monitor
Proactive security monitoring for OpenClaw deployments. Detects ClawHavoc, AMOS stealer, CVE-2026-25253, memory poisoning, and supply chain attacks.
★ 48 · 2026-10-04
siyad01/agentbox
Open-source sandboxed runtime for AI agents — gVisor/Docker isolation, credential vault, immutable audit log. Built after CVE-2026-25253.
★ 1 · 2026-05-11
PoCs 9
★ 10
Last push 2026-10-03 (6 days, 12 hours ago)
Fetching description from NVD…
Show 8 of 9 repositories
gunzf0x/CVE-2025-60787
PoC for CVE-2025-60787 - Authenticated RCE in motionEye for all versions up to 0.43.1b4 (included)
★ 10 · 2026-03-08
d3vn0mi/CVE-2025-60787-POC
Python PoC for CVE-2025-60787, authenticated OS command injection RCE in motionEye <= 0.43.1b4 via unsanitized image_file_name config
★ 0 · 2026-03-13
PoCs 7
★ 9
Last push 2026-10-03 (6 days, 13 hours ago)
Fetching description from NVD…
Show 7 repositories
Skynoxk/CVE-2026-27944
Automated exploit script for CVE-2026-27944 (Nginx UI). Downloads/decrypts backups, extracts system secrets, and creates rogue admin accounts for full dashboar…
★ 9 · 2026-03-14
karimelsheikh1/HTB-Snapped-Writeup
HTB Snapped — Hard Linux machine writeup. CVE-2026-27944 (Nginx UI unauthenticated backup disclosure) chained with CVE-2026-3888 (snapd race condition LPE) to …
★ 1 · 2026-05-07
PoCs 9
★ 14
Last push 2026-10-03 (6 days, 13 hours ago)
Fetching description from NVD…
Show 8 of 9 repositories
0xDaeras/CVE-2024-51482-POC
Time-based SQL injection PoC for CVE-2024-51482 in ZoneMinder, with reproducible Docker lab and automated data extraction.
★ 7 · 2026-05-09
PoCs 7
★ 58
Last push 2026-10-03 (6 days, 16 hours ago)
Fetching description from NVD…
Show 7 repositories
DeathShotXD/0xKern3lCrush
Advanced PoC & Research for CVE-2026-0828 (Safetica) and CVE-2025-7771 (ThrottleStop). Analysis of BYOVD (Bring Your Own Vulnerable Driver) TTPs for Ring 0 pro…
★ 58 · 2026-10-03
Hika-sec/Terminator_Killer
Ring0-level process killer leveraging CVE-2026-0828 (BYOVD). Designed to demonstrate kernel-level process termination via a vulnerable signed driver, highlight…
★ 1 · 2026-08-23
PoCs 12
★ 58
Last push 2026-10-03 (6 days, 16 hours ago)
Fetching description from NVD…
Show 8 of 12 repositories
DeathShotXD/0xKern3lCrush
Advanced PoC & Research for CVE-2026-0828 (Safetica) and CVE-2025-7771 (ThrottleStop). Analysis of BYOVD (Bring Your Own Vulnerable Driver) TTPs for Ring 0 pro…
★ 58 · 2026-10-03
wqsv/ThrottleStopPoC
CVE-2025-7771: Arbitrary physical memory and I/O port read/write via ThrottleStop driver
★ 18 · 2025-09-05
AmrHuss/throttlestop-exploit-rw
Arbitrary physical memory read/write exploitation using ThrottleStop.sys (CVE-2025-7771) with superfetch address translation - Windows kernel security research
★ 15 · 2025-11-13
Demoo1337/ThrottleStop
CVE-2025-7771 ThrottleStop.sys privilege escalation exploit - unrestricted IOCTL access to physical memory via MmMapIoSpace
★ 11 · 2025-09-07
xM0kht4r/CVE-2025-7771
A simple PoC demonstrating the vulnerability in the ThrottleStop.sys driver, showcasing arbitrary physical memory read and write capabilities, as well as virtu…
★ 10 · 2026-01-15
PoCs 6
★ 26
Last push 2026-10-03 (6 days, 19 hours ago)
Fetching description from NVD…
Show 6 repositories
PoCs 8
★ 23
Last push 2026-10-03 (6 days, 20 hours ago)
Fetching description from NVD…
Show 8 repositories
PoCs 7
★ 96
Last push 2026-10-03 (1 week ago)
Fetching description from NVD…
Show 7 repositories
ZeroDayEvil/CVE-2026-41096-PoC
🛡️ Official AI Security Tool module for CVE-2026-41096 (Windows DNSAPI.dll Heap Overflow / DNS-Mayhem Deep Dive Analysis & Audit Module).
★ 96 · 2026-10-03
PoCs 6
★ 160
Last push 2026-10-03 (1 week ago)
Fetching description from NVD…
Show 6 repositories
PoCs 7
★ 2
Last push 2026-10-03 (1 week ago)
Fetching description from NVD…
Show 7 repositories
uartu0/nodejshell
Exploit de reverseshell para desserialização em NodeJs (CVE-2017-5941)
★ 2 · 2023-08-27
f41k0n/RCE-NodeJs
Exploit Title: Node.JS - 'node-serialize' Remote Code Execution (2), Version: 0.0.4, CVE: CVE-2017-5941
★ 0 · 2025-10-12
PoCs 10
★ 75
Last push 2026-10-02 (1 week ago)
Fetching description from NVD…
Show 8 of 10 repositories
exfil0/CVE-2024-55591-POC
A comprehensive all-in-one Python-based Proof of Concept script to discover and exploit a critical authentication bypass vulnerability (CVE-2024-55591) in cert…
★ 12 · 2025-05-26
virus-or-not/CVE-2024-55591
An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS and FortiProxy may allow a remote attacker to gain super-…
★ 8 · 2025-01-29
uLl0a/cve-2024-55591-poc
Educational implementation in Go for CVE-2024-55591 (Fortinet FortiOS Authentication Bypass). Designed for security research, vulnerability assessment, and und…
★ 1 · 2026-09-18
Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.